Vulnerability Bulletins

CVE-2026-3167

   
Affected software HTTPD
 
A security flaw has been discovered in Tenda F453 1.0.0.3. The impacted element is the function formWebTypeLibrary of the file /goform/webtypelibrary of the component httpd. Performing a manipulation of the argument webSiteId results in buffer overflow. The attack may be initiated remotely. The exploit has been released to the public and may be used for attacks.

Link:

https://nvd.nist.gov/vuln/detail/CVE-2026-3167